Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fx4x-q794-whc6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Incorrect permissions are set to default on the ‘Project Management’ page of WebAccess/SCADA portal of WebAccess/SCADA Versions 9.0.1 and prior, which may allow a low-privileged user to update an administrator’s password and login as an administrator to escalate privileges on the system.

Incorrect permissions are set to default on the ‘Project Management’ page of WebAccess/SCADA portal of WebAccess/SCADA Versions 9.0.1 and prior, which may allow a low-privileged user to update an administrator’s password and login as an administrator to escalate privileges on the system.

EPSS

Процентиль: 38%
0.00169
Низкий

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 8.8
nvd
почти 5 лет назад

Incorrect permissions are set to default on the ‘Project Management’ page of WebAccess/SCADA portal of WebAccess/SCADA Versions 9.0.1 and prior, which may allow a low-privileged user to update an administrator’s password and login as an administrator to escalate privileges on the system.

EPSS

Процентиль: 38%
0.00169
Низкий

Дефекты

CWE-732